#

windows-event-logs

https://static.github-zh.com/github_avatars/ahmedkhlief?size=40

APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the sea of windows event logs to decrease the time to uncover suspi...

Python 1.37 k
10 个月前
https://static.github-zh.com/github_avatars/blackhillsinfosec?size=40

Automation scripts to deploy Windows Event Forwarding, Sysmon, and custom audit policies in an Active Directory environment.

PowerShell 485
10 个月前
https://static.github-zh.com/github_avatars/S3mprGumb1?size=40

A PS forensics tool for Scraping, Filtering and Exporting Windows Event Logs

PowerShell 16
6 年前
https://static.github-zh.com/github_avatars/RandomRhythm?size=40

Search Windows event log and output results to a text file

C# 4
2 年前
https://static.github-zh.com/github_avatars/4k95m?size=40

A Python script that parses CPER-formatted raw data contained in error event log provided by WHEA-Logger

Python 4
2 年前
https://static.github-zh.com/github_avatars/spirospolitis?size=40

Convert Windows Event Log .evtx files to other formats.

Python 4
6 年前
https://static.github-zh.com/github_avatars/nagilum?size=40
C# 1
9 个月前
https://static.github-zh.com/github_avatars/Compcode1?size=40

Purpose: analyze Windows Security Logs using Splunk to develop a behavioral baseline and investigate host activity patterns.

Jupyter Notebook 0
3 个月前
https://static.github-zh.com/github_avatars/Compcode1?size=40

*This simulation captures core, widely observed attacker behaviors aligned with common enterprise intrusion patterns. From brute-force access to obfuscated execution, persistence, recon, and privilege...

Jupyter Notebook 0
2 个月前
https://static.github-zh.com/github_avatars/Compcode1?size=40

This case study captures a classic example of attacker persistence using a built-in operating system feature: the Windows service framework. Through the lens of Event ID 7045, the attacker installed a...

Jupyter Notebook 0
4 个月前
https://static.github-zh.com/github_avatars/rhejos?size=40

Detection engineering lab using Splunk, Sigma, and Windows logs — mapped to MITRE ATT&CK

0
5 个月前
https://static.github-zh.com/github_avatars/iscmt?size=40

Parses and imports a Windows Log File (CSV) into a Microsoft SQL Server Database.

C# 0
8 个月前
https://static.github-zh.com/github_avatars/kfallahi?size=40
PowerShell 0
2 年前
https://static.github-zh.com/github_avatars/kolosovpetro?size=40

Shows how to write entries to Windows Event Log

C# 0
2 年前
Website
Wikipedia